Directory Traversal vulnerability found in Pfsense v.2.1.3 and Pfsense Suricata v.1.4.6 pkg v.1.0.1 allows a remote attacker to obtain sensitive information via the file parameter to suricata/suricatalogsbrowser.php.
{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "1.4.6"
},
{
"introduced": "0"
},
{
"last_affected": "1.0.1"
}
]
}{
"versions": [
{
"introduced": "0"
},
{
"last_affected": "2.1.3"
}
]
}